Re: [RADIATOR] Tacacs AuthorizeGroupAttr ?

2017-03-26 Thread Sami Keski-Kasari
eems to be working but the following "permit .*" doesn't ? Tried both with and without "manager_new" before the permit statements but that made no difference. Regards, Patrik Forsberg -Original Message- From: radiator [mailto:radiator-boun...@lists.open.com.au] On

Re: [RADIATOR] Tacacs AuthorizeGroupAttr ?

2017-03-14 Thread Sami Keski-Kasari
Hello Patrik, Juniper is working differently in authorization part than Cisco. Juniper requires that all rules are sent to the device in the first query and after that Juniper device will evaluate rules. In juniper, you can define multiple rules like this: AuthorizeGroup view permit service=ju